nmb0bfi4qr.sys

Kingsoft Internet Security

Beijing Kingsoft Security software Co.,Ltd

Publisher:
Kingsoft Corporation  (signed by Beijing Kingsoft Security software Co.,Ltd)

Product:
Kingsoft Internet Security

Version:
2014,02,09,467

MD5:
827eaca5afc58a649e3220fa4a89dcd0

SHA-1:
fec64b7466087934cc35d0f38fd04bd6fe35477c

SHA-256:
049650282c21dd1c3f81ae3de9affb0bae096f53aca006c2d136db2a02a11007

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/16/2024 5:03:10 AM UTC  (today)

File size:
32.3 KB (33,080 bytes)

Product version:
9,0,146523,467

Copyright:
Copyright (C) 1998-2014 Kingsoft Corporation

Original file name:
kisfly.sys

File type:
Driver (Win32 SYS)

Common path:
C:\Program Files\kingsoft\kingsoft antivirus\nmb0bfi4qr.sys

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/26/2011 1:00:00 AM

Valid to:
12/26/2014 12:59:59 AM

Subject:
CN="Beijing Kingsoft Security software Co.,Ltd", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Beijing Kingsoft Security software Co.,Ltd", L=beijing, S=beijing, C=CN

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
07BC3A51B589E5AF43291DF84EA4C571

File PE Metadata
Compilation timestamp:
2/8/2014 6:05:53 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Native (none required)

Linker version:
8.0

CTPH (ssdeep):
384:Y28Q3tOCWh/B8WuduAY56heLIskc4O+11K921+8j4PnYPLQa6jmQCYeM:LrtOaWudu1OeLec4xq2Q80Pym

Entry address:
0x2F83

Entry point:
A1, 78, 10, 01, 00, 53, 33, DB, 39, 18, 76, 07, BB, 22, 00, 00, C0, EB, 6A, E8, 16, 1D, 00, 00, 39, 1D, CC, 65, 01, 00, 74, EC, 56, 8B, 74, 24, 0C, 53, 56, 68, 4C, 11, 01, 00, 68, F8, 11, 01, 00, 89, 35, DC, 65, 01, 00, E8, A4, F6, FF, FF, 3B, C3, A3, E0, 65, 01, 00, 74, 37, 57, 6A, 1C, 59, 53, B8, 6B, 27, 01, 00, 8D, 7E, 38, 68, B3, 27, 01, 00, F3, AB, E8, 93, 22, 00, 00, E8, BB, F7, FF, FF, FF, 74, 24, 14, E8, C7, 00, 00, 00, E8, B9, FB, FF, FF, E8, 5A, FF, FF, FF, E8, E5, F5, FF, FF, 5F, 5E, 8B, C3, 5B...
 
[+]

Entropy:
6.4112

Code size:
19 KB (19,456 bytes)

Scan nmb0bfi4qr.sys - Powered by Reason Core Security